# Incident Response

- [Splunk](/notes/notes/defensive-security/splunk.md): Replace the placeholder data from this section with your actual data
- [Basic Queries](/notes/notes/defensive-security/splunk/basic-queries.md)
- [Dashboards](/notes/notes/defensive-security/splunk/dashboards.md)
- [Forensics](/notes/notes/defensive-security/forensics.md)
- [Volatility](/notes/notes/defensive-security/forensics/volatility.md)
- [WireShark filters](/notes/notes/defensive-security/wireshark-filters.md)
